Vulnerabilities > Siemens > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-14 CVE-2021-25665 Out-of-bounds Write vulnerability in Siemens Simcenter Star-Ccm+
A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < V2021.2.1).
network
siemens CWE-787
6.8
2021-09-14 CVE-2021-33716 Cleartext Storage of Sensitive Information vulnerability in Siemens products
A vulnerability has been identified in SIMATIC CP 1543-1 (incl.
low complexity
siemens CWE-312
6.5
2021-09-14 CVE-2021-33720 Classic Buffer Overflow vulnerability in Siemens products
A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80).
network
low complexity
siemens CWE-120
5.0
2021-09-14 CVE-2021-37175 Improper Handling of Exceptional Conditions vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.14.1), RUGGEDCOM ROX RX1400 (All versions < V2.14.1), RUGGEDCOM ROX RX1500 (All versions < V2.14.1), RUGGEDCOM ROX RX1501 (All versions < V2.14.1), RUGGEDCOM ROX RX1510 (All versions < V2.14.1), RUGGEDCOM ROX RX1511 (All versions < V2.14.1), RUGGEDCOM ROX RX1512 (All versions < V2.14.1), RUGGEDCOM ROX RX1524 (All versions < V2.14.1), RUGGEDCOM ROX RX1536 (All versions < V2.14.1), RUGGEDCOM ROX RX5000 (All versions < V2.14.1).
network
low complexity
siemens CWE-755
5.3
2021-09-14 CVE-2021-37176 Out-of-bounds Read vulnerability in Siemens Simcenter Femap 2020.2/2021.1
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions).
network
siemens CWE-125
4.3
2021-09-14 CVE-2021-37183 Unspecified vulnerability in Siemens Sinema Remote Connect Server
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2).
low complexity
siemens
6.5
2021-09-14 CVE-2021-37184 Authorization Bypass Through User-Controlled Key vulnerability in Siemens Industrial Edge Management
A vulnerability has been identified in Industrial Edge Management (All versions < V1.3).
network
siemens CWE-639
6.8
2021-09-14 CVE-2021-37186 Use of Insufficiently Random Values vulnerability in Siemens products
A vulnerability has been identified in LOGO! CMR2020 (All versions < V2.2), LOGO! CMR2040 (All versions < V2.2), SIMATIC RTU3010C (All versions < V4.0.9), SIMATIC RTU3030C (All versions < V4.0.9), SIMATIC RTU3031C (All versions < V4.0.9), SIMATIC RTU3041C (All versions < V4.0.9).
low complexity
siemens CWE-330
4.8
2021-09-14 CVE-2021-37200 Path Traversal vulnerability in Siemens Sinec Network Management System 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1).
network
low complexity
siemens CWE-22
4.0
2021-09-14 CVE-2021-37201 Cross-Site Request Forgery (CSRF) vulnerability in Siemens Sinec Network Management System 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1).
network
siemens CWE-352
6.8